Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,958cataloged exploits
36,206CVEs with public exploitation
24,695lab-tested
24,695 exploits
Exploit-DBVexDay Proof
Microsoft MsMpEng - Multiple Crashes While Scanning Malformed Files
CVE-2017-8535doswindows29 May 2017
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve
28RISK
open
Exploit-DBVexDay Proof
Samba 3.5.0 < 4.4.14/4.5.10/4.6.4 - 'is_known_pipename()' Arbitrary Module Load (Metasploit)
CVE-2017-7494CRITICALunder attackransomwareremotelinux29 May 2017
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo
100RISK
open
Exploit-DBVexDay Proof
Microsoft MsMpEng - Multiple Crashes While Scanning Malformed Files
CVE-2017-8536doswindows29 May 2017
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve
28RISK
open
Exploit-DBVexDay Proof
Microsoft MsMpEng - Multiple Crashes While Scanning Malformed Files
CVE-2017-8538doswindows29 May 2017
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve
35RISK
open
Exploit-DBVexDay Proof
WebKit - 'FrameLoader::clear' Stealing Variables via Page Navigation
CVE-2017-2515webappsmultiple25 May 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1.1 is affected. tvOS
23RISK
open
Exploit-DBVexDay Proof
WebKit - 'ContainerNode::parserInsertBefore' Universal Cross-Site Scripting
CVE-2017-2508webappsmultiple25 May 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1.1 is affected. The
23RISK
open
Exploit-DBVexDay Proof
WebKit - 'enqueuePageshowEvent' / 'enqueuePopstateEvent' Universal Cross-Site Scripting
CVE-2017-2510webappsmultiple25 May 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1.1 is affected. The
23RISK
open
Exploit-DBVexDay Proof
Apple WebKit / Safari 10.0.3(12602.4.8) - 'WebCore::FrameView::scheduleRelayout' Use-After-Free
CVE-2017-2514dosmultiple25 May 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1.1 is affected. The
23RISK
open
Exploit-DBVexDay Proof
Mozilla Firefox < 53 - 'gfxTextRun' Out-of-Bounds Read
CVE-2017-5447dosmultiple25 May 2017
An out-of-bounds read during the processing of glyph widths during text layout. This results in a potentially exploitabl
28RISK
open
Exploit-DBVexDay Proof
Apple WebKit / Safari 10.0.3(12602.4.8) - 'Editor::Command::execute' Universal Cross-Site Scripting
CVE-2017-2504webappsmultiple25 May 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1.1 is affected. tvOS
23RISK
open
Exploit-DBVexDay Proof
Mozilla Firefox < 53 - 'ConvolvePixel' Memory Disclosure
CVE-2017-5465dosmultiple25 May 2017
An out-of-bounds read while processing SVG content in "ConvolvePixel". This results in a crash and also allows for other
28RISK
open
Exploit-DBVexDay Proof
Samba 3.5.0 - Remote Code Execution
CVE-2017-7494CRITICALunder attackransomwareremotelinux24 May 2017
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo
100RISK
open
Exploit-DBVexDay Proof
Apple macOS/iOS Kernel - Use-After-Free Due to Bad Locking in Unix Domain Socket File Descriptor Externalization
CVE-2017-2501dosmultiple23 May 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS
23RISK
open
Exploit-DBVexDay Proof
Apple macOS - Lack of Bounds Checking in HIServices Custom CFObject Serialization Local Privilege Escalation
CVE-2017-6978dosmacos23 May 2017
An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the "Accessibili
23RISK
open
Exploit-DBVexDay Proof
Apple macOS/iOS - NSUnarchiver Heap Corruption Due to Lack of Bounds Checking in [NSBuiltinCharacterSet initWithCoder:]
CVE-2017-2523dosmultiple23 May 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS
28RISK
open
Exploit-DBVexDay Proof
Apple macOS/iOS - 'CAMediaTimingFunctionBuiltin' NSKeyedArchiver Memory Corruption Due to Lack of Bounds Checking
CVE-2017-2527dosmultiple23 May 2017
An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the "CoreAnimati
23RISK
open
Exploit-DBVexDay Proof
Apple macOS/iOS - Memory Corruption Due to Bad Bounds Checking in NSCharacterSet Coding for NSKeyedUnarchiver
CVE-2017-2522dosmultiple23 May 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS
23RISK
open
Exploit-DBVexDay Proof
Apple macOS/iOS - 'TIKeyboardLayout initWithCoder:' NSKeyedArchiver Heap Corruption Due to Rounding Error
CVE-2017-2524dosmultiple23 May 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS
23RISK
open
Exploit-DBVexDay Proof
Apple macOS - '32-bit syscall exit' Kernel Register Leak
CVE-2017-2509dosmacos22 May 2017
An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the "Kernel" com
23RISK
open
Exploit-DBVexDay Proof
Linux Kernel 4.11 - eBPF Verifier Log Leaks Lower Half of map Pointer
CVE-2017-9150doslinux22 May 2017
The do_check function in kernel/bpf/verifier.c in the Linux kernel before 4.11.1 does not make the allow_ptr_leaks value
23RISK
open
Exploit-DBVexDay Proof
Apple macOS - 'stackshot' Raw Frame Pointers
CVE-2017-2516dosmacos22 May 2017
An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the "Kernel" com
23RISK
open
Exploit-DBVexDay Proof
VMware Workstation for Linux 12.5.2 build-4638234 - ALSA Configuration Host Local Privilege Escalation
CVE-2017-4915locallinux22 May 2017
VMware Workstation Pro/Player contains an insecure library loading vulnerability via ALSA sound driver configuration fil
38RISK
open
Exploit-DBVexDay Proof
PlaySMS 1.4 - 'import.php' Remote Code Execution
CVE-2017-9101webappsphp21 May 2017
import.php (aka the Phonebook import feature) in PlaySMS 1.4 allows remote code execution via vectors involving the User
60RISK
open
Exploit-DBVexDay Proof
WordPress Plugin PHPMailer 4.6 - Host Header Command Injection (Metasploit)
CVE-2016-10033CRITICALunder attackremotephp17 May 2017
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - Running Object Table Register ROTFLAGS_ALLOWANYCLIENT Privilege Escalation
CVE-2017-0214doswindows17 May 2017
Windows COM in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2
23RISK
open
Exploit-DBVexDay Proof
Apple iOS < 10.3.2 - Notifications API Denial of Service
CVE-2017-6982dosios17 May 2017
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. The issue involves the "Notifications"
23RISK
open
Exploit-DBVexDay Proof
Adobe Flash - Margin Handling Heap Corruption
CVE-2017-3061dosmultiple17 May 2017
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable memory corruption vulnerability in the SWF parser
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows 8/8.1/2012 R2 (x64) - 'EternalBlue' SMB Remote Code Execution (MS17-010)
CVE-2017-0144HIGHunder attackransomwareremotewindows_x86-6417 May 2017
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows
100RISK
open
Exploit-DBVexDay Proof
Adobe Flash - AVC Deblocking Out-of-Bounds Read
CVE-2017-3068dosmultiple17 May 2017
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the Advanced V
28RISK
open
Exploit-DBVexDay Proof
Microsoft Windows - COM Aggregate Marshaler/IRemUnknown2 Type Confusion Privilege Escalation
CVE-2017-0213HIGHunder attackransomwarelocalwindows17 May 2017
Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Ser
93RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.